Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with WSHRAT

Database Entry


Malware:WSHRAT
First seen:2020-03-29 23:49:12 UTC
Last seen:2020-04-09 02:35:46 UTC

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-04-09 02:35:463627af98e43ccfd2a51a83a59feaccfdn/aWSHRAT216.170.125.102:3582
2020-04-09 02:35:463627af98e43ccfd2a51a83a59feaccfdn/aWSHRAT216.170.125.102:3582
2020-03-29 23:49:12239671eb5fa4a750e94b3a6e3943ab80Virustotal results 24 / 73 (32.88%) WSHRAT185.141.61.237:1010
2020-03-29 23:49:12239671eb5fa4a750e94b3a6e3943ab80Virustotal results 24 / 73 (32.88%) WSHRAT185.141.61.237:1010